Skip to main content

Security Directory

Explore comprehensive security analyses from websites around the world. Filter by industry, location, risk level, and more.

Live Guard activity

Security teams are checking their sites with Guard right now

Run your domain before the queue fills up

157327
Websites
130
Industries
113
Countries
52
Avg Score
Page 154 of 166|Showing 7651-7700 of 8294
kespro.com favicon

Kespro

kespro.com

47
RetailFinlandlargeHIGH

Kespro is a large Finnish foodservice wholesaler owned by Kesko Oyj, serving a broad range of customers including restaurants, hotels, cafes, public institutions, and retail chains. The company positions itself as the largest foodservice wholesaler in Finland, offering extensive product selections and digital services to enhance customer experience. The website reflects a professional and well-branded digital presence with comprehensive content and clear navigation, targeting hospitality and retail sectors in Finland. Technically, the site uses modern JavaScript frameworks such as React and integrates marketing and consent management tools like Google Tag Manager and OneTrust. However, the site suffers from a critical security issue: the SSL certificate is invalid or missing, and HTTPS is not enabled, exposing users to potential risks. Security headers are absent, and performance is slow with a high page load time. Privacy compliance is strong with clear policies and consent mechanisms. Contact information is complete and prominently displayed, including phone, email, and physical address. Social media presence is active across major platforms. Overall, the site is professional and content-rich but requires urgent security improvements to protect users and enhance trust.

25
25
17
50
50
85
100
foodservicewholesalekeskotukkurestaurant+2 more
ReactJavaScriptGoogle Tag ManagerOneTrust Cookie Consent

Partner Domains:

kespro.fi
partnerpending
k-business.fi
partnerpending
2025-06-14T22:44:38.230Z
k-auto.fi favicon

K-Auto Oy

k-auto.fi

40
TransportationFinlandlargeHIGH

K-Auto Oy is a prominent automotive company in Finland offering a comprehensive range of services including new and used car sales, leasing, financing, maintenance, and repair services. The company operates multiple dealerships across Finland and represents several major automotive brands such as Volkswagen, Audi, Porsche, SEAT, CUPRA, and Bentley. Their business model focuses on providing a seamless customer experience from vehicle acquisition to after-sales services, supported by digital tools and loyalty programs like Plussa. K-Auto is part of the larger Kesko Group, enhancing its market position and operational capabilities. Technically, the website is built on modern frameworks including Next.js and React, hosted via Cloudflare, and managed through the Contentful CMS. The site demonstrates good mobile optimization, accessibility, and SEO practices, although performance metrics are moderate. The presence of comprehensive legal and privacy documentation indicates a mature approach to compliance and customer trust. From a security perspective, while the site employs some security headers and uses HTTPS, the SSL certificate is currently invalid or missing, which is a critical vulnerability. The absence of DNSSEC and CAA records further indicates potential areas for security enhancement. No explicit incident response or vulnerability disclosure policies were found. Overall, K-Auto presents a professional and trustworthy digital presence with strong business credibility and customer focus. However, addressing the SSL certificate issues and enhancing security configurations are essential to maintain user trust and comply with best practices.

45
-
25
50
50
85
100
automotivecarsalesleasingfinancingcarmaintenance+1 more
Next.jsReactCloudflareWeb

Partner Domains:

kesko.fi
parent40
k-lataus.fi
partnerpending

+1 more partners

2025-06-14T22:44:37.875Z
cinfin.com favicon

Cincinnati Financial Corporation

cinfin.com

56
FinanceUnited StateslargeMEDIUM

Cincinnati Financial Corporation operates the website cinfin.com, providing a comprehensive range of personal and business insurance products through a network of independent agents. The company emphasizes personalized service, financial strength, and a relationship-driven business model. The website content is rich, professionally designed, and targets individuals, families, and businesses seeking tailored insurance solutions. The company has a strong market presence in the finance and insurance sector in the United States, with a history dating back to 1950 and multiple subsidiaries offering various insurance products. Technically, the website is built on a modern stack including React and Next.js, integrated with Sitecore CMS and OneTrust for cookie consent management. The site is mobile-optimized and SEO-friendly, though performance metrics were not available. However, the SSL/TLS configuration is critically deficient, with no valid certificate detected and no modern TLS protocols enabled, posing significant security risks. Security posture is weak due to the lack of HTTPS, which undermines user trust and data protection. While security headers are present, the absence of a valid SSL certificate and modern encryption protocols is a major vulnerability. Privacy compliance is well addressed with clear privacy and cookie policies, including GDPR considerations. Business credibility is high, supported by detailed company information, contact options, and trust signals such as testimonials and financial strength references. Overall, the website is a strong business asset but requires urgent remediation of its SSL/TLS security to protect users and maintain compliance. Strategic improvements in security and ongoing technical enhancements will strengthen the company's digital presence and trustworthiness.

70
43
25
50
50
85
100
insurancefinanceindependentagentsclaimsbusinessinsurance+1 more
ReactNext.jsSitecore Experience Accelerator (SXA)OneTrust (cookie consent)+4

Partner Domains:

taleo.net
partnerpending
2025-06-14T22:22:38.867Z
bluevine.com favicon

Bluevine Inc.

bluevine.com

59
FinanceUnited StateslargeMEDIUM

Bluevine Inc. operates a comprehensive business banking platform targeting small and medium-sized businesses, startups, and self-employed professionals in the United States. The company offers integrated financial products including business checking accounts, various types of business loans, credit cards, and invoicing/payment link solutions. Positioned as one of the largest small business banking platforms in the U.S., Bluevine emphasizes ease of use, lower fees, and access to working capital through partnerships with FDIC-insured banks and lending institutions. The website content is professionally designed, well-structured, and rich in relevant business information, targeting business owners seeking modern financial solutions. Technically, the site is built on a modern stack using Next.js and React, hosted on Netlify, and integrates multiple analytics and marketing tools. However, the security posture is weakened by the absence of a valid SSL certificate and disabled TLS protocols, which are critical for secure communications. Privacy compliance is well addressed with clear policies and consent mechanisms. Overall, Bluevine presents a credible and trustworthy business platform but must urgently address SSL/TLS issues to ensure secure user interactions.

80
43
25
50
50
90
100
businessbankingsmallbusinessfinancialtechnologybusinessloansbusinesschecking+3 more
Next.jsReactNetlifyStripe+5

Partner Domains:

coastalbank.com
partner59
celticbank.com
partneranalyzing...

+2 more partners

2025-06-14T22:16:37.654Z
ravennainteractive.com favicon

Ravenna Interactive

ravennainteractive.com

53
TechnologyUnited StatessmallMEDIUM

Ravenna Interactive is a small technology company based in Seattle, USA, specializing in custom software development with a focus on Laravel and Statamic frameworks. The company serves businesses seeking tailored web and mobile application solutions, boasting notable clients such as Amazon and Blue Origin. Their business model centers on providing expert development services and consulting, positioning themselves as a certified and trusted agency within their niche. Technically, the website employs modern web technologies including Laravel, Statamic CMS, React, and Vue, hosted on DreamHost. Despite a rich content offering and good mobile optimization, the site suffers from slow load times and lacks a valid SSL certificate, which critically impacts security and user trust. The presence of Google Analytics and Tag Manager indicates moderate user tracking, but privacy compliance is weak due to missing privacy and cookie policies. From a security perspective, the site has significant vulnerabilities, primarily the absence of HTTPS and valid SSL/TLS configuration, which exposes users to risks and undermines data protection efforts. While HSTS is enabled, it is ineffective without a valid certificate. No explicit security or incident response policies are published, and no GDPR compliance indicators are present. Overall, the website demonstrates good business credibility and content quality but requires urgent improvements in security and privacy compliance to enhance trustworthiness and protect user data. Strategic recommendations include immediate SSL certificate installation, implementation of privacy policies, and performance optimization.

75
25
25
50
100
85
40
laravelstatamicwebdevelopmentseattlesoftwaredevelopment+3 more
LaravelStatamicReactVue+6
2025-06-14T21:52:20.236Z
curotec.com favicon

Curotec

curotec.com

49
TechnologyUnited StatesmediumHIGH

Curotec is a medium-sized technology company specializing in software development services including SaaS, web, mobile, AI/ML, and e-commerce development. Positioned as a trusted and top-rated development agency, it serves SaaS and enterprise teams with flexible engagement models such as project delivery, staff augmentation, and support retainers. The company boasts multiple industry recognitions and partnerships, including official Laravel and Vue.js partnerships, enhancing its market credibility. Technically, the website is built on a modern tech stack featuring Laravel, React, Vue.js, Python, Node.js, and AWS, hosted on an Nginx server with Cloudflare DNS. The site uses WordPress CMS with Elementor for content management and includes advanced SEO and accessibility features. However, performance metrics are not available, though the site is mobile-optimized and well-structured. From a security perspective, the site lacks a valid SSL certificate and does not support modern TLS protocols, which is a critical vulnerability impacting user trust and data security. While SPF and DMARC records are properly configured, the absence of HTTPS and security headers like HSTS reduces the overall security posture. Privacy and cookie policies are present with consent mechanisms, indicating good compliance with GDPR and related regulations. Overall, Curotec's website is professional and content-rich, supporting its business credibility. The critical security issue of missing SSL must be addressed promptly to improve trust and protect user data. Strategic improvements in SSL configuration and security headers will enhance the site's security and compliance standing.

15
25
25
50
50
85
100
saassoftwaredevelopmentstaffaugmentationaimlwebdevelopment+2 more
LaravelPHPVue.jsNuxt+15
2025-06-14T21:49:28.468Z
V

Vehikl

vehikl.com

37
TechnologyCanadamediumHIGH

Vehikl is a specialized software consultancy focused on building web and mobile applications using PHP and JavaScript frameworks such as Laravel, Vue, React, and Node.js. The company positions itself as an extension of client teams, offering app development, technical leadership, and product design services. It has a strong community presence and notable advisors, indicating a reputable market position within the technology sector in Canada. The website content is professionally presented with clear navigation and relevant business information, targeting businesses seeking expert development services. Technically, the website uses modern frontend technologies including Gatsby, React, Vue, and Tailwind CSS, hosted likely on DigitalOcean. However, the site suffers from slow load times and lacks a valid SSL certificate, serving content over HTTP only. Accessibility and SEO are basic to good, but performance optimization is needed. Analytics are implemented via Google Analytics and Google Tag Manager, indicating moderate user tracking. From a security perspective, the absence of HTTPS and security headers, combined with a DMARC policy set to 'none', reflects a weak security posture. No privacy or cookie policies were found, which may impact compliance with GDPR and other privacy regulations. Contact information is limited to email and social media links, with no phone or physical address provided. Overall, Vehikl's website demonstrates strong business credibility and content quality but requires urgent improvements in security and privacy compliance to enhance trust and protect user data. Performance optimization would also improve user experience and SEO effectiveness.

20
25
17
50
50
80
40
webdevelopmentsoftwareconsultancyphpjavascriptlaravel+6 more
ReactVueNode.jsLaravel+5
2025-06-14T21:49:28.425Z
sevalla.com favicon

Kinsta

sevalla.com

65
TechnologyN/amediumMEDIUM

Sevalla, a product of Kinsta, is a comprehensive platform-as-a-service (PaaS) solution designed to host and manage web projects including applications, databases, and static sites. Positioned as a flexible and scalable platform, Sevalla targets developers and teams seeking to simplify deployment and infrastructure management. The platform leverages Google Cloud Platform and Cloudflare to provide global deployment capabilities and enhanced performance. The website reflects a professional and modern design with clear navigation and extensive content describing its services and benefits. Security and privacy are prominently emphasized, with certifications such as SOC II Type 2, ISO 27001, GDPR, and CCPA compliance highlighted, reinforcing trustworthiness. The presence of a detailed cookie consent mechanism and privacy policies further supports compliance efforts. Technically, the site uses modern frameworks like Next.js and React, integrates analytics and marketing tools such as Plausible Analytics, Google Tag Manager, and Intercom, and is hosted on a robust cloud infrastructure. However, performance metrics indicate a slow load time, and some security best practices like HSTS and DNSSEC are not fully implemented. Overall, Sevalla presents a strong market position with a secure and privacy-conscious platform, though improvements in technical optimization and security hardening could enhance its posture.

30
43
25
87
52
85
100
paasapplicationhostingdatabasehostingstaticsitehostingcloudflare+2 more
ReactNext.jsCloudflareGoogle Cloud Platform+3

Partner Domains:

kinsta.com
parent71
2025-06-14T21:47:51.000Z
guidewire.com favicon

Guidewire Software, Inc.

guidewire.com

68
TechnologyUnited StatesenterpriseMEDIUM

Guidewire Software, Inc. is a leading enterprise technology company specializing in Property and Casualty (P&C) insurance software and cloud platforms. Founded in 2001 and headquartered in the United States, Guidewire offers a comprehensive suite of products including InsuranceSuite for policy administration, claims management, and billing, as well as InsuranceNow, a cloud-based platform designed for rapid deployment. The company serves a global market with customers in over 40 countries and maintains a strong presence through partnerships, professional services, and an extensive marketplace ecosystem. Guidewire is recognized as a market leader with multiple industry awards and a robust social media presence. Technically, Guidewire's website leverages modern web technologies such as Next.js and React, hosted on Vercel, and managed via Sitecore CMS. The site demonstrates good mobile optimization, accessibility, and SEO practices, providing a professional and user-friendly experience. The use of Marketo forms and integration with marketing and analytics tools like Google Tag Manager and Cookiebot indicates a mature digital marketing infrastructure. From a security perspective, the site employs several security headers and enforces HTTPS, although the SSL certificate is currently invalid, which is a critical issue. The absence of full HSTS enforcement and OCSP stapling are areas for improvement. The company provides clear security and privacy policies, including incident response contact information, reflecting a responsible security posture. No major vulnerabilities or exposed sensitive data were detected. Overall, Guidewire presents a strong business and technical profile with excellent content quality and business credibility. The primary risk lies in the SSL certificate status, which should be promptly addressed to maintain trust and security. Strategic recommendations include enhancing SSL management, fully enabling HSTS, and continuing to strengthen privacy compliance and security best practices.

45
43
25
50
100
85
100
insurancesoftwaretechnologypcinsurancecloudplatform+2 more
Next.jsReactJavaScriptjQuery+3
2025-06-14T21:41:56.327Z
uppy.io favicon

Transloadit

uppy.io

40
TechnologyN/amediumHIGH

Uppy is an open source JavaScript file uploader developed and maintained by Transloadit. It provides a modular and extensible solution for uploading files from local devices and various remote sources such as Dropbox, Google Drive, Instagram, and more. The platform targets developers and businesses seeking reliable and easy-to-integrate file upload capabilities. Uppy enjoys a solid market position as a community-driven project with commercial backing, supported by endorsements from notable technology communities and publications. Technically, the website leverages modern web technologies including React and Docusaurus for documentation, and integrates the Tus protocol for resumable uploads. Hosting and DNS services are provided by Cloudflare, ensuring robust infrastructure. However, the website suffers from a critical security shortfall due to the absence of a valid SSL certificate and HTTPS support, which significantly impacts its security posture. From a security perspective, while the site avoids known SSL vulnerabilities and uses secure protocols in its backend services, the lack of HTTPS and security headers exposes users to potential risks. Privacy compliance is basic, with a privacy policy present but no cookie consent mechanism or GDPR compliance indicators. Contact and incident response information are not publicly available, limiting transparency. Overall, the website demonstrates good content quality, technical sophistication, and business credibility but is hampered by critical security deficiencies. Strategic improvements in SSL deployment, privacy compliance, and contact transparency are recommended to enhance trust and security.

35
43
25
40
90
75
100
fileuploaderjavascriptopensourcecloudstoragefileupload+3 more
JavaScriptReactDocusaurusTus protocol+2

Partner Domains:

transloadit.com
parent65
2025-06-14T20:44:30.230Z